Full-Time

Technology Governance & Risk Lead

Australian Financial Complaints Authority (AFCA)

Australian Financial Complaints Authority (AFCA)

No salary listed

Melbourne VIC, Australia

Hybrid

Two days per week on-site in Melbourne office.

Category
Engineering Management (1)
Required Skills
ISO/IEC 27001
Requirements
  • Extensive experience directing comprehensive threat evaluations and diagnosing sophisticated cyber security risks within highly regulated financial services or digital platform environments.
  • Deep operational understanding of sovereign compliance and threat mitigation frameworks, including the ASD Information Security Manual (ISM) and Essential Eight, and relevant ASIC obligations.
  • Demonstrated capability to evaluate control effectiveness and map technical workflows against tier-one frameworks, specifically ISM/NIST CSF 2.0, ISO/IEC 27001, the Australian Privacy Principles (APPs), and expectations under APRA CPS 230 and CPS 234.
  • Practical knowledge of identifying structural risks associated with advanced analytics, model integrity, and emerging automated tools, ensuring alignment with sovereign AI safety guidance and data security standards.
  • Proven track record of architecting, managing, and continuously monitoring dynamic registers dedicated to capturing information security vulnerabilities and complex supply chain risks.
  • Elite professional writing and presentation skills, with a focus on translating complex technical vulnerabilities into clear, high-level risk reports for senior management, risk committees, and external compliance partners.
  • Expert ability to draft, modernise, and regularly evaluate enterprise-wide technology guidelines, internal security standards, and governance policies to match changing organisational profiles.
  • Extensive background acting as a trusted internal advisor to product and infrastructure teams, providing practical mitigation strategies that protect sensitive architectures without halting delivery momentum.
  • Hands-on experience collaborating across diverse business segments to establish robust data classification, handling protocols, and protective measures for dense repositories of highly sensitive member data and consumer PII.
Responsibilities
  • Define and own the end‑to‑end solution architecture for the Digital Experience Platform, including website, digital applications, integration and supporting services.
  • Translate customer experience and business requirements into practical, implementable architectures aligned to enterprise standards.
  • Lead architecture design across digital channels, content management, workflow, integration, data and security layers.
  • Work closely with Delivery Leads, Product Owners and business stakeholders to ensure architectural decisions support delivery outcomes and customer journeys.
  • Provide hands‑on architectural guidance to delivery teams, including solution design, patterns, and trade‑off decisions.
  • Ensure solutions meet security, privacy, risk and regulatory requirements in a financial services or regulated context.
  • Collaborate with vendors, system integrators and partners to ensure solution designs align to target architecture and agreed standards.
  • Identify and manage architectural risks, technical debt and dependency impacts across the program.
  • Contribute to the evolution of enterprise and digital architecture standards, patterns and roadmaps.
Australian Financial Complaints Authority (AFCA)

Australian Financial Complaints Authority (AFCA)

View

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A